[Samba] winbind on DC : how use gidNumber instead of primaryGroupID as user's primary group

Rowland penny rpenny at samba.org
Tue Aug 20 09:54:48 UTC 2019


On 20/08/2019 10:29, L.P.H. van Belle via samba wrote:
>
>> -----Oorspronkelijk bericht-----
>> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
>> Prunk Dump via samba
>> Verzonden: dinsdag 20 augustus 2019 10:20
>> Aan: samba at lists.samba.org
>> Onderwerp: Re: [Samba] winbind on DC : how use gidNumber
>> instead of primaryGroupID as user's primary group
>>
>> Le lun. 19 août 2019 à 12:37, Rowland penny via samba
>> <samba at lists.samba.org> a écrit :
>>> On 19/08/2019 11:13, Prunk Dump via samba wrote:
>>>> Last important thing. I use some script to manage my users from Linux.
>>>> As I can't use the "id" command to get the user gidNumber on DC :
> Why not, i see this on my DC's. ( Debian Buster, samba 4.10.6 with AD backends. )
>
> id username ( samba domain user)
> uid=10002(NTDOM\username) gid=10000(NTDOM\domain users) groups=10000(NTDOM\domain users),3000030(NTDOM\Allow-rdp),3000315(NTDOM\Allow-monitoring),3000009(BUILTIN\users)
>
The problem with that is, 'id' gets its info from the same place that 
'getent' does, so the OP will still get the wrong group ;-)

Rowland





More information about the samba mailing list